Announcements

Microsoft Security Updates – 07 June 2026

Microsoft has released security updates to address several vulnerabilities affecting multiple Microsoft products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, obtain sensitive information, or execute arbitrary code on the affected systems. Sample of the addressed vulnerabilities: 1. Azure HorizonDB Elevation of Privilege Vulnerability (CVE-2026-48567): CVSS: 10 Attack Vector: Network Attack Complexity:

Microsoft Security Updates – 07 June 2026 Read More »

Google Chrome Security Update – 01 June 2026

Google has released an updated Chrome version 148.0.7778.216/217 for Windows, 148.0.7778.215/216 for Mac, and 148.0.7778.215 for Linux. The addressed vulnerabilities could allow the attacker to perform spoofing and denial-of-service attacks, obtain sensitive information, bypass security restrictions, or execute arbitrary code on the affected system via a crafted HTML page. Sample of the addressed vulnerabilities: 1.

Google Chrome Security Update – 01 June 2026 Read More »

Oracle Security Patch Update – 01 June 2026

Oracle released its critical patch updates for May 2026, containing 77 new security patches across multiple affected Oracle products and third-party components. The addressed vulnerabilities could allow the attacker to conduct denial-of-service attacks, obtain sensitive information, bypass security restrictions, manipulate data, gain elevated privileges, execute arbitrary code, and gain access to the affected systems. Sample

Oracle Security Patch Update – 01 June 2026 Read More »

Veeam Security Updates – 01 June 2026

Veeam has released security updates to fix several vulnerabilities across Veeam Backup & Replication 13.0.1.2067 and all earlier version 13 builds, Veeam Service Provider Console 9.2.0.33215 and all earlier version 9 builds, and Veeam ONE. The addressed vulnerabilities could allow the attacker to gain elevated privileges, manipulate sensitive files, or execute arbitrary code, and gain

Veeam Security Updates – 01 June 2026 Read More »

Microsoft Security Updates – 24 May 2026

Microsoft has released security updates to address several vulnerabilities affecting multiple Microsoft products. The addressed vulnerabilities could allow the attacker to obtain sensitive information, gain elevated privileges, execute arbitrary code, and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Microsoft Power Pages Remote Code Execution Vulnerability (CVE-2026- 23652): CVSS: 10.0 Attack

Microsoft Security Updates – 24 May 2026 Read More »

Drupal Security Updates – 21 May 2026

Drupal has released security updates to address several vulnerabilities affecting multiple Drupal products. The addressed vulnerabilities could allow the attacker to conduct cross-site scripting attacks, obtain sensitive information, escalate privileges, manipulate data, execute arbitrary SQL commands, and gain access to the affected products. Samples of the addressed vulnerabilities: 1. Drupal Date iCal Information Disclosure Vulnerability

Drupal Security Updates – 21 May 2026 Read More »

Mozilla Firefox Security Updates – 21 May 2026

Mozilla has released an updated Firefox version 151, Firefox ESR versions 115.36 and 140.11 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to conduct denial-of- service and spoofing attacks, obtain sensitive information, bypass security restrictions, gain elevated privileges, execute arbitrary code, and gain access to the affected system. Sample of the

Mozilla Firefox Security Updates – 21 May 2026 Read More »

Cisco Security Updates – 21 May 2026

Cisco has released security updates to address several vulnerabilities affecting multiple Cisco products. The addressed vulnerabilities could allow the attacker to conduct denial-of-service attacks, obtain sensitive information, make configuration changes across tenant boundaries with the privileges of the Site Admin user, execute arbitrary code/commands, and gain access to the affected systems. Sample of addressed vulnerabilities:

Cisco Security Updates – 21 May 2026 Read More »

Microsoft Security Update -19 May 2026

Microsoft has released a security update to address a critical vulnerability affecting multiple Microsoft Azure products. The addressed vulnerability could allow the remote unauthorized attacker to elevate privileges over a network. The addressed vulnerability: Azure Local Disconnected Operations (ALDO) Elevation of Privilege Vulnerability (CVE-2026-42822): CVSS: 10.0 Attack Vector: Network Attack Complexity: Low Privileges Required: None

Microsoft Security Update -19 May 2026 Read More »

Google Chrome Security Updates – 18 May 2026

Google has released an updated Chrome version 148.0.7778.167/168 for Windows and Mac, and version 148.0.7778.167 for Linux. The addressed vulnerabilities could allow the attacker to bypass security restrictions, perform denial-of-service attacks, gain elevated privileges, obtain sensitive information, manipulate data, or execute arbitrary code and gain access to the affected systems. Sample of the addressed vulnerabilities:

Google Chrome Security Updates – 18 May 2026 Read More »

Apache Tomcat Security Update – 17 May 2026

Apache Tomcat has released a security update to address several vulnerabilities affecting Apache Tomcat. The addressed vulnerabilities could allow the attacker to perform denial-of-service attacks, obtain sensitive information, bypass security restrictions, or gain access to the affected system. Sample of the addressed vulnerabilities: 1. Apache Tomcat Digest Authentication Bypass Vulnerability (CVE-2026- 43512): CVSS: 9.8 Attack

Apache Tomcat Security Update – 17 May 2026 Read More »

Microsoft Security Update – 15 May 2026

Microsoft has released a security update to address a vulnerability affecting Microsoft Exchange Server. The addressed vulnerability could allow attackers to conduct spoofing attacks through a cross-site scripting (XSS) flaw, potentially leading to the execution of arbitrary JavaScript code within the victim’s web browser context. The addressed vulnerability: Microsoft Exchange Server 2016 Spoofing Vulnerability (CVE-2026-42897):

Microsoft Security Update – 15 May 2026 Read More »

Cisco Security Updates – 15 May 2026

Cisco has released security updates to address several vulnerabilities affecting multiple Cisco products. The addressed vulnerabilities could allow the attacker to obtain sensitive information, gain elevated privileges, bypass security restrictions, and gain access to the affected systems. Sample of addressed vulnerabilities: 1. Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability (CVE- 2026-20182): CVSS: 10 Attack Vector:

Cisco Security Updates – 15 May 2026 Read More »

F5 Security Updates – 14 May 2026

F5 has released security updates to address several vulnerabilities affecting multiple F5 products. The addressed vulnerabilities could allow the attacker to conduct denial-of-service and man-in-the-middle attacks, gain elevated privileges, bypass security restrictions, manipulate files, perform cross-site request forgery (CSRF) attacks, obtain sensitive information, execute arbitrary code/commands, and gain access to the affected systems. Sample of

F5 Security Updates – 14 May 2026 Read More »

Intel Security Updates – 13 May 2026

Intel has released security updates to address several vulnerabilities in multiple Intel products. The addressed vulnerabilities could allow the attacker to gain elevated privileges, obtain sensitive information, or perform denial-of-service attacks on the affected product. Samples of the addressed vulnerabilities: 1. Intel® Data Center Graphics Driver for VMware ESXi Buffer Overflow Vulnerability (CVE-2026-20794): CVSS: 9.3

Intel Security Updates – 13 May 2026 Read More »

Ivanti Security Updates – 13 May 2026

Ivanti has released security updates to fix several vulnerabilities across multiple Ivanti products. The addressed vulnerabilities could allow the attacker to obtain sensitive information, gain elevated privileges, perform SQL injection attacks, manipulate data, or conduct remote code execution attacks. Sample of the addressed vulnerabilities: 1. Ivanti Xtraction Information Disclosure Vulnerability (CVE-2026-8043): CVSS: 9.6 Attack Vector:

Ivanti Security Updates – 13 May 2026 Read More »

Microsoft May 2026 Patch Tuesday

Microsoft has released its monthly patch of security updates, known as Patch Tuesday. The mentioned patch addressed 120 flaws across multiple products. Microsoft has addressed multiple vulnerabilities in this release that could allow attackers to gain elevated privileges, perform spoofing attacks, bypass security restrictions, obtain sensitive information, conduct denial-of-service attacks, or execute arbitrary code and

Microsoft May 2026 Patch Tuesday Read More »

Fortinet Security Updates – 13 May 2026

Fortinet has released security updates to fix several vulnerabilities affecting multiple Fortinet products. The addressed vulnerabilities could allow the attacker to conduct denial-of-service attacks, bypass security restrictions, obtain sensitive information, gain elevated privileges, execute unauthorized code or commands, and gain access to the affected system via specially crafted requests. Sample of the addressed vulnerabilities: 1.

Fortinet Security Updates – 13 May 2026 Read More »

SAP Security Patch Day May 2026

SAP has released security updates to address several vulnerabilities affecting multiple SAP products. SAP has released security updates to address vulnerabilities across multiple SAP products, including SAP S/4HANA, SAP BusinessObjects Business Intelligence Platform, SAP NetWeaver Application Server, SAP Commerce Cloud, SAP HANA, SAP Financial Consolidation, and SAP Incentive and Commission Management. The addressed vulnerabilities could

SAP Security Patch Day May 2026 Read More »

Mozilla Firefox Security Updates – 10 May 2026

Mozilla has released an updated Firefox version 150.0.2, Firefox ESR versions 115.35.2 and 140.10.2 to fix multiple vulnerabilities. The addressed vulnerabilities could allow the remote attacker to perform denial-of- service attacks, execute arbitrary code, and gain access to the affected systems. Sample of the addressed vulnerabilities: 1. Mozilla Firefox Incorrect Boundary Conditions in The Audio/Video:

Mozilla Firefox Security Updates – 10 May 2026 Read More »